
Privacy policy
Timbre is a private, self-hosted publishing tool used by one person, Nikhil Pal, to manage his own LinkedIn, Instagram and Facebook posts and to read his own YouTube channel analytics. It has no other users and does not offer accounts to the public.
What Timbre accesses
- YouTube (read-only): with the owner's permission, Timbre reads his own channel's identity and analytics (views, watch time, subscribers gained and lost, traffic sources) through the YouTube Data API and YouTube Analytics API, using the scopes youtube.readonly and yt-analytics.readonly. It never uploads, edits or deletes anything on YouTube.
- LinkedIn, Instagram and Facebook: the owner's own accounts, to publish posts he writes and to read comments on them so he can reply.
- Clicks on tracked links: when someone follows a timbre.nikhilailabs.com/go link, Timbre records the time, the referring page and the browser type to count the click, then redirects. No cookies are set and no personal profile is built.
The "Timbre for LinkedIn" browser extension
The extension works only on linkedin.com pages that the user opens in their own browser, and only after they enter their own Timbre access token. It reads what LinkedIn has already shown on the page: posts in the feed, comments on those posts, and the conversation that is open on the messaging page. That includes the names, profile links, headlines and text written by the people who appear on those pages.
- It sends that information only to the user's own Timbre workspace (timbre.nikhilailabs.com), over HTTPS. Nothing is sent to any other server, and nothing is sold, shared or used for advertising.
- It makes no requests to LinkedIn, and never clicks, scrolls, likes, comments, connects or sends messages. When the user opens a conversation from Timbre, it types the user's own drafted reply into LinkedIn's message box; the user decides whether to press Send.
- It stores only its settings (the Timbre address, the access token and simple counters) in the browser's extension storage. It does not read cookies, passwords or browsing history, and does not run on any other website.
- The user can pause it from its toolbar button, and removing the extension stops all collection. Data already in Timbre can be deleted on request.
How data is used and stored
Data is used only to show the owner his own results inside Timbre. It is stored in Timbre's private database on its hosting provider (Railway) and in the owner's own backups. It is not sold, shared with third parties, or used for advertising. Timbre's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
To draft posts, captions and replies for the owner, Timbre sends the relevant text to Anthropic's API: the owner's own posts, and, only when the owner asks for a reply draft, the comment, post or conversation being replied to. Anthropic does not use API data to train its models. YouTube data is not sent to any AI service.
Removing access
The owner can disconnect YouTube in Timbre's Settings or revoke access at any time at myaccount.google.com/permissions. Disconnecting deletes the stored tokens; stored analytics can be deleted on request.
Contact
palnikhil06@gmail.com